Solved

Reauthenticating an NT 4.0 BDC

Posted on 2002-04-19
6
277 Views
Last Modified: 2013-12-28
Fellow Experts:

I am currently managing a few fairly small military networks.  On one of my networks, I have an NT 4.0 domain set up with one PDC and one BDC.  The domain controllers had some issues and were seperated briefly.  The problem now is that the PDC does not trust the BDC.  Directory replication still occurs from the PDC and one can add / change users, etc on the PDC.  However, it is not possible to add users from the BDC.  It generates the error "There is no user session key for the specified logon session".  Also, errors 3210 and 7023 are present in the event log.  

This problem and resolution is described in Technet Article Q153719 "How to Re-Sync PDC/BDC Trust After Event IDs 3210 and 7023".  Basically, the password-protected channel has been broken and the account associated with the BDC's computer name (BDC$) is lo longer listed with the PDC.  However, the suggested resolution of renaming the computer name (even temporarily) is not feasible as the system is also an Exchange 5.5 server.  

Does anyone have any suggestions regarding how one might readd the computer name to the PDC (possibly a third party tool) so that we will not require a full rebuild of the NT Server and Exchange?  Any ideas would be greatly appreciated.

Sincerely,

Herb
0
Comment
Question by:schreib
  • 3
  • 2
6 Comments
 
LVL 11

Expert Comment

by:geoffryn
ID: 6960428
Have you tried manually resetting the secure channel?

http://support.microsoft.com/default.aspx?scid=kb;en-us;Q150518 
0
 

Author Comment

by:schreib
ID: 6962609
Geoffry:

Thanks for the feedback.  Actually, both netdom and nltest indicated that the secure channel was still valid.  However, the BDC can still not add users or complete similar tasks and presents the error "There is no user session key for the specified logon session."  Any other ideas would be greatly appreciated.

Herb
0
 
LVL 11

Accepted Solution

by:
geoffryn earned 250 total points
ID: 6962958
Is the time correct on both servers?
0
Courses: Start Training Online With Pros, Today

Brush up on the basics or master the advanced techniques required to earn essential industry certifications, with Courses. Enroll in a course and start learning today. Training topics range from Android App Dev to the Xen Virtualization Platform.

 

Author Comment

by:schreib
ID: 6963124
Geoffry:

You are the man!  The clock was off and that was the problem.  Thanks a ton!

Herb
0
 
LVL 11

Expert Comment

by:geoffryn
ID: 6963131
Glad to help.
0
 
LVL 5

Expert Comment

by:mbormann
ID: 9215117
Hey!

I cloned some Windows 2000 machines using Ghost 7.5 Corporate Edition, and when I attempt to join the NT 4 domain I consistently get the above error. I forgot to make sure that the SID was different, I did not use sysprep or Ghostwalker, but afterwards I used the NewSID tool from sysinternals.com. I also deleted machine account in PDC, restarted and recreated. I also tried naming the new computers to a completely new name not present in the Server Manager. BDC is almost always offline and is brought back up every few weeks or so. After spending two days, finally your comment "check teh time" solved m problem.

My time was set to GMT, apparently it doesn't affect machines which have already joined the domain, but affects the new machines joining the domain!

Thanks amigo!
0

Featured Post

Live: Real-Time Solutions, Start Here

Receive instant 1:1 support from technology experts, using our real-time conversation and whiteboard interface. Your first 5 minutes are always free.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

NTFS file system has been developed by Microsoft that is widely used by Windows NT operating system and its advanced versions. It is the mostly used over FAT file system as it provides superior features like reliability, security, storage, efficienc…
How to record audio from input sources to your PC – connected devices, connected preamp to record vinyl discs, streaming media, that play through your audio card: Vista, Windows 7, Windows 8, Windows 8.1 and Windows 10 – both 32 bit & 64.
This video Micro Tutorial explains how to clone a hard drive using a commercial software product for Windows systems called Casper from Future Systems Solutions (FSS). Cloning makes an exact, complete copy of one hard disk drive (HDD) onto another d…
The Task Scheduler is a powerful tool that is built into Windows. It allows you to schedule tasks (actions) on a recurring basis, such as hourly, daily, weekly, monthly, at log on, at startup, on idle, etc. This video Micro Tutorial is a brief intro…

815 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

9 Experts available now in Live!

Get 1:1 Help Now